HackMyVM - Breakout
Автор: Proxy Programmer
Загружено: 2021-10-22
Просмотров: 933
Описание:
any action done in the video is only for educational purpose only
Timestamps
0:00 - Intro
0:09 - Running a netdiscover
0:22 - Start of nmap scan
0:34 - Enumerating and finding brainfuck text
0:54 - Searching for brainfuck decoder & decoding
1:20 - Running and gobuster & enumerating ports
3:07 - Explaining all the tools we can use for SMB
4:22 - Using enum4linux to enumerate for users
5:14 - smbclient to list out shares (use cme it's better)
5:39 - Using the users found from SMB on the Usermin & trying password from BrainFuck
5:57 - Getting a shell through the GUI
6:19 - Manual Enumeration
6:36 - Finding a .bak password file
7:26 - Getting linpeas.sh on the machine
8:12 - We can run linpeas.sh so we get a reverse shell with nc, so now we can run linpeas.sh
8:42 - Getting a better shell, so now we can run linpeas.sh
9:23 - Looking at output from linpeas and seeing that we have CAP Capabilities
9:41 - Viewing documentation on what this cap does
9:58 - Using tar to get files that have r-w by root
10:46 - Extracting our tar.gz file and getting the creds for root
11:12 - Switching users to root!
Повторяем попытку...
Доступные форматы для скачивания:
Скачать видео
-
Информация по загрузке: